iPhone 2.1 Bug Watch: SMS Security and Mail Phishing/Spamming

Being security conscious he turned on the passcode lock and disabled SMS Preview. [...] If a message is received during the passcode entry or while the screen is locked, a generic message of “New Text Message” appears, to prevent viewing of messages without unlocking the phone. [...] If however the phone is placed in emergency call mode, any incoming SMS messages are previewed instead of presented as the generic messages.

Next comes two issues concerning the implementation choices Apple made in the iPhone Mobile Mail client. According to Ars Technica, as disclosed by Aviv Raff, the first involves the way Mail truncates URLs for display on the iPhone. If a malicious URL is properly crafted by an attacker, the truncation can cause a fake URL to be non-obvious to the users, and thus more likely to result in phishing.

The second results from the lack of an option to display images in the full HTML Mobile Mail client. Since images are automatically displayed, spammers can gain confirmation that the email account that received it is active and ripe for spam attack.

As always, malicious attacks evolve and propagate at an alarming rate, and while we hope Apple fixes these immediately if not sooner, the onus is ultimately and always on we end users to pay attention and do everything we can to avoid them.

This is what i was saying the other day... they need to come out with more notification options... to lock things down or turn them on if we wanted to.
I predict that we will see better notification options when...COUGH when Push finally comes out.

You essentially make critically posts I would say. That is the very first time I visited your website and so far I?m amazed using the study you created to produce this article incredible. Fantastic Work!

This is a terrific blog post, I found your website researching yahoo for a related subject matter and came to this. I couldnt find to much alternative information and facts on this posting, so it was awesome to find this one. I will probably end up being back again to look at some other articles that you have another time.